[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Prompt Password for all open sessions

ID: oval:org.secpod.oval:def:25067Date: (C)2015-06-12   (M)2023-07-04
Class: COMPLIANCEFamily: macos




The sudo command must be configured to prompt for the administrator user's password at least once in each newly opened Terminal window or remote login session, as this prevents a malicious user from taking advantage of an unlocked computer or an abandoned login session to bypass the normal password prompt requirement. Without the tty_tickets option, all open local and remote login sessions would be authenticated to use sudo without a password for the duration of the configured password timeout window.

Platform:
Apple Mac OS X 10.10
Reference:
CCE-90290-8
CPE    1
cpe:/o:apple:mac_os_x:10.10
CCE    1
CCE-90290-8
XCCDF    1
xccdf_org.secpod_benchmark_general_Mac_OS_X_10_10

© SecPod Technologies